The Seven Sins:Security Smells in Infrastructure as Code Scripts
收藏Figshare2019-01-12 更新2026-04-08 收录
下载链接:
https://figshare.com/articles/Dataset_The_Seven_Sins-Security_Smells_in_Infrastructure_as_Code_Scripts/6943316/4
下载链接
链接失效反馈官方服务:
资源简介:
This repository includes the dataset and source code used in the paper 'The Seven Sins: Security Smells in Infrastructure as Code Scripts', accepted at the International Conference on Software Engineering (ICSE) 2019. The tool is also available as a Docker image at: https://cloud.docker.com/repository/docker/akondrahman/ruby_for_sp/general <br><br>Practitioners use infrastructure as code (IaC) scripts to provision servers and development environments. While developing IaC scripts, practitioners may inadvertently introduce security smells. Security smells are recurring coding patterns that are indicative of security weakness and can potentially lead to security breaches. The goal of sharing the research artifact is to help software practitioners and researchers use our static analysis tool Security Linter for Infrastructure as Code (SLIC) to identify security smells in infrastructure as code scripts. We provide a Docker-based research artifact to use and replicate the major findings presented in the paper. Link of the paper: https://akondrahman.github.io/papers/icse19_slic.pdf<br>
提供机构:
Akond Rahman
创建时间:
2019-01-12



